?
Solved

Active Directory connection site generation

Posted on 2014-04-14
9
Medium Priority
?
1,393 Views
Last Modified: 2014-04-22
How to stop automatic site connection (KCC) on Active Directory and manually add server to a site connection ?

How to check the current KCC status on my AD ? How to enable it to let it generate the topology again ?

Does it use in Window 2008 and 2012 ? Tks

Tks
0
Comment
Question by:AXISHK
  • 5
  • 3
8 Comments
 
LVL 12

Accepted Solution

by:
SreRaj earned 2000 total points
ID: 40000995
Hi,

Knowledge Consistency Checker is the process which automatically generates replication topology between domain controllers in an organization. If you want to modify existing replication topology, then you could modify existing Site Connection Objects or manually create new Site Connection Objects. KCC will not modify customized or newly created Site Connection Objects. Following articles discusses how to create new site connections manually.

http://technet.microsoft.com/en-us/library/cc784644(v=ws.10).aspx
http://technet.microsoft.com/en-us/library/cc731537(v=ws.10).aspx

It will not be a good idea to stop KCC as it will be monitoring for lose of connectivity between sites and create new site connection for replication to work fine. If it is disabled, AD replication may not work properly. Following article shows how KCC can be disabled in Windows 2000/2003.

http://support.microsoft.com/kb/242780
0
 

Author Comment

by:AXISHK
ID: 40001023
Currently, I have problem synchronzing a remote site. I have removed a auto-generated connection and manually add a connection again. Will there be a problem ??

How to force KCC to recalculate the whole AD ?

Does the same concenpt apply for Window 2008 / 2012 ?

Tks
0
 
LVL 12

Expert Comment

by:SreRaj
ID: 40001027
You can use the following command to force a domain controller to calculate inbound replication topology and report for any errors.

repadmin /kcc

Concepts are same for Windows 2008/2012. Please refer following article for more information.

http://technet.microsoft.com/en-us/library/cc742173.aspx
0
Never miss a deadline with monday.com

The revolutionary project management tool is here!   Plan visually with a single glance and make sure your projects get done.

 

Author Comment

by:AXISHK
ID: 40001068
Here is the current option value on Window 2008. Does the KCC enable ? Tks
NTDS.png
0
 
LVL 12

Expert Comment

by:SreRaj
ID: 40001175
Please check in the following location. I feel you are looking inside a server object and that setting is to make DC, GC.

KCC status
0
 

Author Comment

by:AXISHK
ID: 40009953
Tks.

The option is blank. Does it mean KCC is enable ?
0
 
LVL 12

Expert Comment

by:SreRaj
ID: 40010076
Yes, if it is not set, then KCC is running.
0
 
LVL 12

Expert Comment

by:SreRaj
ID: 40012308
Following are the values for Option. If it is not set then KCC will be running normal.

¿To disable automatic intra-site topology generation, use value 1 (decimal).
¿To disable automatic inter-site topology generation, use value 16 (decimal).
¿To disable both intra-site and inter-site topology generation, use value 17 (decimal).
0

Featured Post

Making Bulk Changes to Active Directory

Watch this video to see how easy it is to make mass changes to Active Directory from an external text file without using complicated scripts.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This process allows computer passwords to be managed and secured without using LAPS. This is an improvement on an existing process, enhanced to store password encrypted, instead of clear-text files within SQL
I’m willing to make a bet that your organization stores sensitive data in your Windows File Servers; files and folders that you really don’t want making it into the wrong hands.
This tutorial will walk an individual through the steps necessary to install and configure the Windows Server Backup Utility. Directly connect an external storage device such as a USB drive, or CD\DVD burner: If the device is a USB drive, ensure i…
Attackers love to prey on accounts that have privileges. Reducing privileged accounts and protecting privileged accounts therefore is paramount. Users, groups, and service accounts need to be protected to help protect the entire Active Directory …
Suggested Courses

599 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question